Metrics
Affected Vendors & Products
Tue, 22 Apr 2025 17:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Totolink Totolink a3700r Totolink a3700r Firmware | |
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:h:totolink:a3700r:-:*:*:*:*:*:*:* cpe:2.3:o:totolink:a3700r_firmware:9.1.2u.5822_b20200513:*:*:*:*:*:*:* | |
| Vendors & Products | Totolink Totolink a3700r Totolink a3700r Firmware | 
Thu, 17 Apr 2025 14:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| References |  | |
| Metrics | ssvc 
 | 
Wed, 16 Apr 2025 03:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A vulnerability has been found in TOTOLINK A3700R 9.1.2u.5822_B20200513 and classified as critical. Affected by this vulnerability is the function setSmartQosCfg of the file /cgi-bin/cstecgi.cgi. The manipulation leads to improper access controls. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | TOTOLINK A3700R cstecgi.cgi setSmartQosCfg access control | |
| Weaknesses | CWE-266 CWE-284 | |
| References |  | |
| Metrics | cvssV2_0 
 
 
 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: VulDB
Published: 2025-04-16T03:00:20.945Z
Updated: 2025-04-17T13:56:27.556Z
Reserved: 2025-04-15T20:46:45.539Z
Link: CVE-2025-3665
 Vulnrichment
                        Vulnrichment
                    Updated: 2025-04-17T13:33:44.067Z
 NVD
                        NVD
                    Status : Analyzed
Published: 2025-04-16T03:15:18.057
Modified: 2025-04-22T16:54:19.520
Link: CVE-2025-3665
 Redhat
                        Redhat
                    No data.